azure-docs icon indicating copy to clipboard operation
azure-docs copied to clipboard

Fileless attack detection in Plan Table

Open itguysocal opened this issue 3 years ago • 1 comments

In the Plan table, Fileless attack detection is listed as not included in Plan 1. However, since Plan 1 includes EDR, then Fileless attack detection is included as part of the EDR technology according to this article here: https://docs.microsoft.com/en-us/microsoft-365/security/intelligence/fileless-threats?view=o365-worldwide#defeating-fileless-malware


Document Details

Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.

itguysocal avatar Aug 16 '22 23:08 itguysocal

@itguysocal Thanks for posting the question. I have assigned the issue to the content author to review and update if required. Thanks!!

RohitMungi-MSFT avatar Aug 17 '22 06:08 RohitMungi-MSFT

@itguysocal We are exactly discussing this internally. It should be resolved in the next few days.

bmansheim avatar Aug 18 '22 13:08 bmansheim

@itguysocal Haven't forgotten this.

bmansheim avatar Sep 06 '22 11:09 bmansheim

Hi @itguysocal . We just this week published updates to the Defender for Servers overview page, including clarification that Defender for Servers Plan 1 gets fileless attack detection from MDE. I hope that helps.

#please-close

bmansheim avatar Oct 20 '22 07:10 bmansheim